Forum Discussion

a_evissa_195792's avatar
a_evissa_195792
Icon for Nimbostratus rankNimbostratus
Apr 08, 2015

Ondemand cert auth for iphone

Hi,

 

Trying to get on demand cert auth working for iphone with the following setup

 

SSLPROFILE (default self signed cert), ive imported my external ROOT-CA as my trusted cert authorities, APM just has ondemand cert auth set to Require and imported my cert to iphone.

 

Ive used the same cert in browser and set clientcert inspection it works fine, any ideas

 

8 18:16:08 bigip debug tmm[15529]: 01260009:7: Connection error: ssl_shim_vfycerterr:4084: unable to get local issuer certificate (48)

 

Apr 8 18:23:52 bigip info tmm1[15529]: 01260013:6: SSL Handshake failed for TCP 37.131.70.194:60606 -> 192.168.244.26:443

 

Apr 8 18:23:53 bigip info tmm1[15529]: 01260013:6: SSL Handshake failed for TCP 37.131.70.194:60608 -> 192.168.244.26:443

 

Apr 8 18:23:54 bigip info tmm1[15529]: 01260013:6: SSL Handshake failed for TCP 37.131.70.194:60610 -> 192.168.244.26:443 Apr 8 18:23:54 bigip debug tmm[15529]: 01260006:7: Peer cert verify error: unable to get local issuer certificate (depth 0; cert /emailAddre

 

1 Reply

  • some iOS versions have issues with Client cert auth if the certificate is not issued from the Root CA (no intermediate). I advise you to google to find out if you're experiencing this